Archive for September, 2007

India win Twenty20!!

What a series it has been.. England, South Africa, Australia and now Pakistan back to back. Amazing series and we are loving it here. They said we couldn’t win in every one of these matches. The quality of cricket was also awesome in these matches. When my country wins a major tournament in our favorite sport after many many many years, it sure is sweet! We were screaming our heads off in the cafeteria.

SSL site seal

I don’t follow the rationale behind SSL site seals, which are usually marketed as an add-on to higher-priced X.509 certificates. What is the advantage of asking a visitor apparently on your website to click on an image, and go to a 3rd party website to verify a site’s certificate? It brings a false sense of security, as users who don’t know about SSL can be fooled into visiting a dummy non-SSL webpage with the site seal.

Your web browser already verifies the CA’s signature on the presented certificate. Many popular browsers also let you view information about the Subject and the Issuer in the certificate. If the site seal was created because a certificate may have been revoked and the browser hasn’t checked that, then the same can be said for the certificate that the CA’s website hosting the site seal sends.

On the subject of SSL certificates, it is high time that Firefox added a box next to the location bar, which displays the organization (O) of the Subject DN in the X.509 certificate when visiting a website over HTTPS. Right now, hovering over the padlock displays the certificate authority that signed the certificate. A user like me would be more interested in seeing the organization that it was issued to.

Hello world!

I bit the bullet and updated this blog to use Wordpress, due to its fancy WYSIWYG editor thing and overall ease of use. This blog will be more or less about my work and personal life from now on.

The Hemingway theme was picked as I liked the look of John Lilly’s blog.